(new Soapbox())->shout(array_map('strtoupper', $opinions)); //Shaun's blog


Me, elsewhere

GitHub
parseword
Miscellaneous public code

snuze
A PHP API client for Reddit

Twitter
@parseword
I don't tweet much

XMPP chat
xmpp@shaunc.com
(Pidgin, Miranda, Swift, etc.)


Perfect is the enemy of good enough.

curl 7.74.0 regression breaks Smokeping probes

Posted January 25, 2021 by shaun

tl;dr: On systems running Smokeping, avoid curl 7.74.0 and wait for a newer release!


I have a few Smokeping nodes deployed here and there to keep tabs on various services. Recently, all of the curl-based probes stopped working on one of the Smokeping instances. Any probe using either the Curl.pm or AnotherCurl.pm module would immediately enter "alert" status, indicating 100% failure, and these probes would never recover to a cleared state.

The monitoring node where things went haywire is running FreeBSD 12.2, with Smokeping and curl both installed from the ports collection. It turns out there's a bug in the most recent version of curl, and updating the curl port from 7.73.0 to 7.74.0 caused Smokeping to choke. (My Linux-based Smokeping nodes avoided this fate thanks to slower release cycles for their package universes.)

The bug is that time-based statistics returned by the -w option to curl are suddenly being presented in microseconds instead of seconds, e.g. where Smokeping expects a value like 0.105208 indicating about a tenth of a second, the buggy curl 7.74.0 returns 105208 instead. There are multiple tickets filed against curl, and it looks like the next release will fix it.

Meantime, if you have an affected FreeBSD system where you've already upgraded curl to version 7.74.0, you can temporarily fix Smokeping by downgrading curl until a newer release comes along. I used portdowngrade, which can be installed from /usr/ports/ports-mgmt/portdowngrade if it's not already present.

[root@host ~]# curl --version | head -1
curl 7.74.0 (amd64-portbld-freebsd12.2) libcurl/7.74.0 OpenSSL/1.1.1h zlib/1.2.11 nghttp2/1.42.0
[root@host ~]# portdowngrade ftp/curl r557488
[root@host ~]# cd /usr/ports/curl
[root@host /usr/ports/curl]# make DISABLE_VULNERABILITIES=yes deinstall reinstall
[root@host /usr/ports/curl]# curl --version | head -1
curl 7.73.0 (amd64-portbld-freebsd12.2) libcurl/7.73.0 OpenSSL/1.1.1h zlib/1.2.11 zstd/1.4.5 nghttp2/1.42.0


Recent articles

📰 curl 7.74.0 regression breaks Smokeping probes

📰 chrony improves client stats output for easier abuse detection

📰 Resolving PHP error "Fatal error: strict_types declaration must not use block mode"

📰 Resolving "Not using downloaded repomd.xml because it is older than what we have" yum error

📰 Resolving subversion error E125001: Couldn't determine absolute path of '.'

📰 Caveat with Vantec SATA/IDE to USB 2.0 Adapter and Macrium software

📰 Jay Niffley, Man of Mystery

📰 160.1.30.97: Multi-protocol scanning activity from Amazon GovCloud

📰 Compiling Doxygen on FreeBSD without LaTeX and Ghostscript

📰 Introducing Snuze, a PHP client for the Reddit API

📰 jisusaiche: Java's installer telemetry

📰 BIND client log error "query_find: query_getdb failed"

📰 Resolving "The lang/perl5.24 port has been deleted: Has expired" portmaster error

📰 Armagaddon2 interim fix for Firefox 56 and other old versions

📰 Strange DNS queries: qname "miep", qtype ANY

▲ Back to top | Permalink to this page